The PhantomLance espionage campaign is targeting specific victims, mainly in Southeast Asia. It’s centered around a complex spyware that s distributed via dozens of apps within the Google Play market. Multiple versions of the malware have been found in various applications since being flagged back in July 2019, albeit all with the same basic tool set. The latest version also hides its suspicious permission requests; they are requested dynamically and hidden inside the dex executable. The malware can also gather a list of installed applications, as well as device information, such as the model and OS version.
Source: https://threatpost.com/sophisticated-android-spyware-google-play/155202/